在 klaussilveira GitList 2.0.0 版本中检测到一个漏洞。该问题位于 文件中的 函数,属于 XML 解析组件。通过执行操作可触发服务拒绝(Denial of Service, DoS)。该攻击可远程实施。漏洞的利用方式现已公开,可能被用于实际利用。将版本升级至 3.0.0-beta 可解决此问题。该补丁的提交哈希为 f67609d52c1812fa8a7ed80eae5e795cfd72115f。建议升级受影响的组件以修复该漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| klaussilveira | GitList | 2.0.0 |
cpe:2.3:a:gitlist:gitlist:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet